{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,30]],"date-time":"2024-10-30T09:29:01Z","timestamp":1730280541243,"version":"3.28.0"},"reference-count":21,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,10,18]],"date-time":"2023-10-18T00:00:00Z","timestamp":1697587200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,10,18]],"date-time":"2023-10-18T00:00:00Z","timestamp":1697587200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,10,18]]},"DOI":"10.1109\/kse59128.2023.10299529","type":"proceedings-article","created":{"date-parts":[[2023,11,6]],"date-time":"2023-11-06T19:05:46Z","timestamp":1699297546000},"page":"1-6","source":"Crossref","is-referenced-by-count":0,"title":["Optimizing Region of Convergence to Preserve Model Privacy from Membership Inference Attack"],"prefix":"10.1109","author":[{"given":"Bao Dung","family":"Nguyen","sequence":"first","affiliation":[{"name":"VNU University of Engineering and Technology,HMI Lab,Hanoi,Vietnam"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tuan Dung","family":"Pham","sequence":"additional","affiliation":[{"name":"VNU University of Engineering and Technology,HMI Lab,Hanoi,Vietnam"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Viet Cuong","family":"Ta","sequence":"additional","affiliation":[{"name":"VNU University of Engineering and Technology,HMI Lab,Hanoi,Vietnam"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"ref12","first-page":"23","article-title":"Special properties of gradient descent with large learning rates","volume":"202","author":"mohtashami","year":"0","journal-title":"Proceedings of the 40th International Conference on Machine Learning ser Proceedings of Machine Learning Research"},{"key":"ref15","first-page":"2615","article-title":"Systematic evaluation of privacy risks of machine learning models","author":"song","year":"2021","journal-title":"30th USENIX Security Symposium (USENIX Security 21)"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"ref20","article-title":"Deep residual learning for image recognition","author":"he","year":"2015","journal-title":"CoRR vol abs\/1512 03385"},{"key":"ref11","article-title":"Three factors influencing minima in SGD","author":"jastrzebski","year":"2017","journal-title":"CoRR vol abs\/1711 04623"},{"key":"ref10","article-title":"On large-batch training for deep learning: Generalization gap and sharp minima","author":"keskar","year":"2016","journal-title":"CoRR vol abs\/1609 04836"},{"key":"ref21","article-title":"Towards explaining the regularization effect of initial large learning rate in training neural networks","author":"li","year":"2019","journal-title":"CoRR vol abs\/1907 04595"},{"key":"ref2","article-title":"On the geometry of generalization and memorization in deep neural networks","author":"stephenson","year":"2021","journal-title":"CoRR vol abs\/2105 14602"},{"key":"ref1","first-page":"267","article-title":"The secret sharer: Evaluating and testing unintended memorization in neural networks","author":"carlini","year":"2019","journal-title":"28th USENIX Security Symposium (USENIX Security 19)"},{"journal-title":"White-box vs black-box Bayes optimal strategies for membership inference","year":"2019","author":"sablayrolles","key":"ref17"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2018.00027"},{"journal-title":"Very Deep Convolutional Networks for Large-scale Image Recognition","year":"2015","author":"simonyan","key":"ref19"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1997.9.1.1"},{"key":"ref8","article-title":"Membership inference attacks and defenses in neural network pruning","author":"yuan","year":"2022","journal-title":"CoRR vol abs\/2202 03335"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CMI48017.2019.8962136"},{"key":"ref9","article-title":"Entropy-sgd: Biasing gradient descent into wide valleys","author":"chaudhari","year":"2016","journal-title":"CoRR vol abs\/1611 01838"},{"journal-title":"Relaxloss Defending membership inference attacks without losing utility","year":"2022","author":"chen","key":"ref4"},{"key":"ref3","article-title":"Membership inference attacks against machine learning models","author":"shokri","year":"2016","journal-title":"CoRR vol abs\/1610 05820"},{"key":"ref6","article-title":"ML privacy meter: Aiding regulatory compliance by quantifying the privacy risks of machine learning","author":"murakonda","year":"2020","journal-title":"CoRR vol abs\/2007 09339"},{"key":"ref5","article-title":"Quantifying membership inference vulnerability via generalization gap and other model metrics","author":"bentley","year":"2020","journal-title":"CoRR vol abs\/2009 05669"}],"event":{"name":"2023 15th International Conference on Knowledge and Systems Engineering (KSE)","start":{"date-parts":[[2023,10,18]]},"location":"Hanoi, Vietnam","end":{"date-parts":[[2023,10,20]]}},"container-title":["2023 15th International Conference on Knowledge and Systems Engineering (KSE)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10298834\/10298844\/10299529.pdf?arnumber=10299529","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,12,11]],"date-time":"2023-12-11T19:10:59Z","timestamp":1702321859000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10299529\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,10,18]]},"references-count":21,"URL":"https:\/\/doi.org\/10.1109\/kse59128.2023.10299529","relation":{},"subject":[],"published":{"date-parts":[[2023,10,18]]}}}